<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Beng Hacks</title>
	<atom:link href="http://benghacks.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://benghacks.wordpress.com</link>
	<description>enumerate, obfuscate, penetrate</description>
	<lastBuildDate>Mon, 19 Apr 2010 06:19:51 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='benghacks.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Beng Hacks</title>
		<link>http://benghacks.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://benghacks.wordpress.com/osd.xml" title="Beng Hacks" />
	<atom:link rel='hub' href='http://benghacks.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Tired</title>
		<link>http://benghacks.wordpress.com/2010/04/19/tired/</link>
		<comments>http://benghacks.wordpress.com/2010/04/19/tired/#comments</comments>
		<pubDate>Mon, 19 Apr 2010 06:19:51 +0000</pubDate>
		<dc:creator>benghacks</dc:creator>
				<category><![CDATA[HKEY_LOCAL_MACHINE]]></category>

		<guid isPermaLink="false">http://benghacks.wordpress.com/2010/04/19/tired/</guid>
		<description><![CDATA[Lately very tired from skool, dun even feel like turning on my PS3 or even play my FB&#8230; haiz&#8230; no time to play code anymore, feel like quitting the scene liaoz. Can someone help me?! FML&#8230; Rumours of new iPhone in June 2010? True? HTC HD2 looks great!<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=146&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Lately very tired from skool, dun even feel like turning on my PS3 or even play my FB&#8230; haiz&#8230; no time to play code anymore, feel like quitting the scene liaoz.</p>
<p>Can someone help me?! FML&#8230;</p>
<p>Rumours of new iPhone in June 2010? True? HTC HD2 looks great!</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/benghacks.wordpress.com/146/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/benghacks.wordpress.com/146/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/benghacks.wordpress.com/146/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/benghacks.wordpress.com/146/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/benghacks.wordpress.com/146/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/benghacks.wordpress.com/146/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/benghacks.wordpress.com/146/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/benghacks.wordpress.com/146/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/benghacks.wordpress.com/146/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/benghacks.wordpress.com/146/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/benghacks.wordpress.com/146/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/benghacks.wordpress.com/146/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/benghacks.wordpress.com/146/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/benghacks.wordpress.com/146/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=146&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://benghacks.wordpress.com/2010/04/19/tired/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d17a3220f897e0066490a10b6aa6aae7?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">benghacks</media:title>
		</media:content>
	</item>
		<item>
		<title>IDN</title>
		<link>http://benghacks.wordpress.com/2010/03/17/idn/</link>
		<comments>http://benghacks.wordpress.com/2010/03/17/idn/#comments</comments>
		<pubDate>Wed, 17 Mar 2010 08:30:34 +0000</pubDate>
		<dc:creator>benghacks</dc:creator>
				<category><![CDATA[HKEY_LOCAL_MACHINE]]></category>
		<category><![CDATA[DNS]]></category>
		<category><![CDATA[IDN]]></category>

		<guid isPermaLink="false">http://benghacks.wordpress.com/2010/03/17/idn/</guid>
		<description><![CDATA[Today I learnt something new, the world of IDN or Internationalised Domain Names. What is that? Basically domain names that are NOT in ASCII! Cool rite? Try these links: http://مثال.إختبار http://例子.测试 http://例子.測試 http://παράδειγμα.δοκιμή http://उदाहरण.परीक्षा http://例え.テスト http://실례.테스트 http://مثال.آزمایشی http://пример.испытание http://உதாரணம்.பரிட்சை http://בײַשפּיל.טעסט Cool rite? Seems like now got such unicode domain name, but what happens in the [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=143&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Today I learnt something new, the world of IDN or Internationalised Domain Names. What is that? Basically domain names that are NOT in ASCII! Cool rite? Try these links:</p>
<p><a href="http://مثال.إختبار">http://مثال.إختبار</a><br />
<a href="http://例子.测试">http://例子.测试</a><br />
<a href="http://例子.測試">http://例子.測試</a><br />
<a href="http://παράδειγμα.δοκιμή">http://παράδειγμα.δοκιμή</a><br />
<a href="http://उदाहरण.परीक्षा">http://उदाहरण.परीक्षा</a><br />
<a href="http://例え.テスト">http://例え.テスト</a><br />
<a href="http://실례.테스트">http://실례.테스트</a><br />
<a href="http://مثال.آزمایشی">http://مثال.آزمایشی</a><br />
<a href="http://пример.испытание">http://пример.испытание</a><br />
<a href="http://உதாரணம்.பரிட்சை">http://உதாரணம்.பரிட்சை</a><br />
<a href="http://בײַשפּיל.טעסט">http://בײַשפּיל.טעסט</a></p>
<p>Cool rite? Seems like now got such unicode domain name, but what happens in the background is that it is converted into an ASCII string that looks like http://xn--oaoughou, the key here is the xn-- and after that is a unique ASCII string that is mapped to the unicode domain name. Juz like DNS mapping of IP address to ASCII string, now is Unicode -&gt; ASCII -&gt; IP.</p>
<p>Nice!</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/benghacks.wordpress.com/143/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/benghacks.wordpress.com/143/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/benghacks.wordpress.com/143/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/benghacks.wordpress.com/143/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/benghacks.wordpress.com/143/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/benghacks.wordpress.com/143/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/benghacks.wordpress.com/143/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/benghacks.wordpress.com/143/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/benghacks.wordpress.com/143/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/benghacks.wordpress.com/143/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/benghacks.wordpress.com/143/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/benghacks.wordpress.com/143/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/benghacks.wordpress.com/143/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/benghacks.wordpress.com/143/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=143&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://benghacks.wordpress.com/2010/03/17/idn/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d17a3220f897e0066490a10b6aa6aae7?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">benghacks</media:title>
		</media:content>
	</item>
		<item>
		<title>MITM injection attacks?</title>
		<link>http://benghacks.wordpress.com/2010/03/10/mitm-injection-attacks/</link>
		<comments>http://benghacks.wordpress.com/2010/03/10/mitm-injection-attacks/#comments</comments>
		<pubDate>Wed, 10 Mar 2010 03:39:53 +0000</pubDate>
		<dc:creator>benghacks</dc:creator>
				<category><![CDATA[HKEY_LOCAL_MACHINE]]></category>

		<guid isPermaLink="false">http://benghacks.wordpress.com/2010/03/10/mitm-injection-attacks/</guid>
		<description><![CDATA[I read alot about MITM attacks to steal info or right now to do SSL MITM attacks, but maybe I&#8217;m ignorant cuz maybe discussed long ago, but I was thinking of MITM to inject malicious data into the stream? Is it possible to do a MITM, detect for say an installer download or Windows Update [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=142&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>I read alot about MITM attacks to steal info or right now to do SSL MITM attacks, but maybe I&#8217;m ignorant cuz maybe discussed long ago, but I was thinking of MITM to inject malicious data into the stream?</p>
<p>Is it possible to do a MITM, detect for say an installer download or Windows Update for hotfix or update exe, then on-the-fly attach something at the end of the exe, or better still repack the whole exe into 2 exe to be dropped?</p>
<p>WIth something like Paros Proxy or even tcpdump sourcecode, it is possible right? I&#8217;ve never tried this b4 so things like is there a TCP checksum? What about reporting filesize, will the browser be confused? I&#8217;ve seen browser download file where the filesize is unknown but it still know when to complete the download. Damn I need to know more about TCP/IP and HTTP <img src='http://s0.wp.com/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' /> </p>
<p>With a proxy or even a wifi access point, it should be I think easy to intercept a webpage, then modify the content and return to browser, but file download then repack the file is I think a much trickier problem.</p>
<p>Something worth exploring <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/benghacks.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/benghacks.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/benghacks.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/benghacks.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/benghacks.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/benghacks.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/benghacks.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/benghacks.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/benghacks.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/benghacks.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/benghacks.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/benghacks.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/benghacks.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/benghacks.wordpress.com/142/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=142&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://benghacks.wordpress.com/2010/03/10/mitm-injection-attacks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d17a3220f897e0066490a10b6aa6aae7?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">benghacks</media:title>
		</media:content>
	</item>
		<item>
		<title>SS8 Interceptor</title>
		<link>http://benghacks.wordpress.com/2010/03/01/ss8-interceptor/</link>
		<comments>http://benghacks.wordpress.com/2010/03/01/ss8-interceptor/#comments</comments>
		<pubDate>Mon, 01 Mar 2010 07:34:46 +0000</pubDate>
		<dc:creator>benghacks</dc:creator>
				<category><![CDATA[HKEY_LOCAL_MACHINE]]></category>

		<guid isPermaLink="false">http://benghacks.wordpress.com/?p=139</guid>
		<description><![CDATA[Earlier I wrote about the Mobile Secrets java app and how its Secrets were easily revealed via bytecode disassembly. Well I recently got wind of an even bigger java app sexpose, the SS8 Blackberry trojan that the UAE deployed last year and caused a big hoohaa cuz it got sexposed! I managed to get the [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=139&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://benghacks.wordpress.com/2009/09/29/mobile-secrets/" target="_blank">Earlier I wrote about the Mobile Secrets java app and how its Secrets were easily revealed via bytecode disassembl</a>y. Well I recently got wind of an even bigger java app sexpose, the SS8 Blackberry trojan that the UAE deployed last year and caused a big hoohaa cuz it got sexposed!</p>
<p>I managed to get the java pack only last week so still running thru the code but it old news to others already. The tech websites already talked about it, seems is demo/early version with alot of loophole or features missing. You can read this <a href="http://www.wired.com/images_blogs/threatlevel/2009/07/analyzing_the_ss8_interceptor_application_for_the_blackberry_handheld.pdf" target="_blank">PDF for a overview</a>.</p>
<p>The key points I extract out for your easy reading! Very interesting and sad&#8230; battery drain LOL! I wonder the mobile data bill got can refund anot&#8230;</p>
<blockquote><p><strong>OBSERVATIONS</strong><br />
There are several anomalies in the application that lead to the conclusion that it was either not the version intended for deployment; it was mistakenly rolled out or it was an early release that was being tested.<br />
The reasons for such a conclusion can be argued as:<br />
(1) No capability for intercepting incoming messages.<br />
(2) No possibility of silently updating the application with newer releases.<br />
(3) Lack of comprehensive interception capabilities. Only outgoing email messages.<br />
(4) Several segments of unused source code and references that have been hardcoded into the application. Further observations have been listed below.</p>
<p><strong>Disabled Email Control Channel</strong><br />
The email based control channel to send commands to the application is disabled. On further analysis, why it was disabled became clear. When the service-provider sends an email message to activate the application, a copy of this control email would also be delivered to the recipient’s email server. Thus the user would be alerted to possible suspicious activity.</p>
<p><strong>Control Channel Messages</strong><br />
Control channel commands are momentarily visible when they are received. Thus a user who happens to be looking at his handheld screen would see a message appear for a fraction of a second and then instantly disappear. This behavior was observed on a BlackBerry handheld but was not apparent on the BlackBerry handheld simulator.</p>
<p><strong>Hardcoded References</strong><br />
A standard program that is redistributed will usually have some sort of constants or configuration file. The Interceptor application did contain such a file, however the configuration parameters from the file were not used in the execution of the program. Instead, there were hardcoded references that were used. This is what lead to the conclusion that this version of the application was either a early testing version that was mistakenly deployed or it was a badly modified version of an original file.</p>
<p><strong>Battery Drain</strong><br />
The application implements a watcher on all the handheld message folders. This watcher triggers other components whenever a message is received. Despite this, the application polls a function to check if a new message has been received. This constant polling uses processing cycles and thus increases<br />
power consumption. It is very likely that less powerful processors may overheat due to the increased processing activity. This is bad programming practice, especially for handheld devices. It was also the reason users were made suspicious of the program.</p>
<p><strong>Heartbeat</strong><br />
Every hour, each handheld will report its status and version information to the central server. This happens regardless of application is installed on the handheld and is named whether the application is intercepting messages or not.</p>
<p><strong>Encryption</strong><br />
The Interceptor application makes use of encryption when sending intercepted messages or receiving control commands. It does this by encrypting outgoing messages using AES. The keys are hardcoded into the application. For incoming control commands, the messages are decrypted using the device PIN as the decryption key. The encryption type is still AES.</p></blockquote>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/benghacks.wordpress.com/139/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/benghacks.wordpress.com/139/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/benghacks.wordpress.com/139/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/benghacks.wordpress.com/139/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/benghacks.wordpress.com/139/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/benghacks.wordpress.com/139/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/benghacks.wordpress.com/139/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/benghacks.wordpress.com/139/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/benghacks.wordpress.com/139/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/benghacks.wordpress.com/139/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/benghacks.wordpress.com/139/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/benghacks.wordpress.com/139/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/benghacks.wordpress.com/139/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/benghacks.wordpress.com/139/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=139&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://benghacks.wordpress.com/2010/03/01/ss8-interceptor/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d17a3220f897e0066490a10b6aa6aae7?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">benghacks</media:title>
		</media:content>
	</item>
		<item>
		<title>All Bout Security 2010</title>
		<link>http://benghacks.wordpress.com/2010/02/23/all-bout-security-2010/</link>
		<comments>http://benghacks.wordpress.com/2010/02/23/all-bout-security-2010/#comments</comments>
		<pubDate>Tue, 23 Feb 2010 01:54:37 +0000</pubDate>
		<dc:creator>benghacks</dc:creator>
				<category><![CDATA[HKEY_LOCAL_MACHINE]]></category>

		<guid isPermaLink="false">http://benghacks.wordpress.com/?p=137</guid>
		<description><![CDATA[The 2nd All ‘Bout Security&#38; Connectivity Seminar is here again in Temasek Polytechnic! This seminar provides a knowledge-sharing platform for IT Security, Network Professionals and students. The seminar includes talks on IT security and connectivity and a Web Challenge (supported by HITB), which is open to public. The aim of the challenge is to test [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=137&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<div>
<p><img src="http://allboutsecurity.files.wordpress.com/2009/03/abs-logo.png?w=497&#038;h=153" alt="" width="497" height="153" /></p>
<p><strong>The</strong><strong> 2<sup>nd</sup> All ‘Bout Security&amp; Connectivity Seminar is here again in Temasek Polytechnic!</strong> This seminar provides a knowledge-sharing platform for IT Security, Network Professionals and students.</p>
<p>The seminar includes talks on IT security and connectivity and a Web Challenge (supported by HITB), which is open to public. The aim of the challenge is to test the contestants on various web penetration techniques.<br />
<a href="http://allboutsecurity.eventbrite.com/"><img title="registerbuttonup" src="http://allboutsecurity.files.wordpress.com/2010/02/registerbuttonup.png?w=300&#038;h=150&#038;h=150" alt="" width="300" height="150" /></a><br />
<strong>What’s on in 2010?</strong></p>
<p>This year, the All Bout Security Seminar (<strong>5 March 2010</strong>) will include an additional seminar series on Connectivity, as well as a Web Challenge (supported by HITB).<strong></strong></p>
<p><strong>Event Details:</strong><br />
<strong> Date:</strong> March 05 2010<br />
<strong> Venue:</strong> Temasek Polytechnic Auditorium 1<br />
<strong>Time:</strong> 12pm – 6pm<br />
<strong> Programme List:</strong> All ‘Bout Security &amp; Connectivity Seminar:</p>
<table border="1" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td width="77"><strong>Time</strong></td>
<td colspan="2" width="211"><strong>Topic</strong></td>
<td width="87"><strong>Speaker</strong></td>
<td colspan="2" width="104"><strong>Organization</strong></td>
</tr>
<tr>
<td width="77"><strong>12:00 – 13:00</strong></td>
<td colspan="2" width="211">Registrations and Project Showcase</td>
<td width="87">-</td>
<td colspan="2" width="104">-</td>
</tr>
<tr>
<td width="77"><strong>13:00 – 13:15</strong></td>
<td colspan="2" width="211">Opening of All ‘Bout Security &amp; Connectivity Seminar 2010</td>
<td width="87">-</td>
<td colspan="2" width="104">-</td>
</tr>
<tr>
<td width="77"><strong>13:15 – 13:45</strong></td>
<td colspan="2" width="211">Anatomy of a Security Breach</td>
<td width="87">Unmesh Deshmukh</td>
<td colspan="2" width="104">Symantec<br />
Corporation</td>
</tr>
<tr>
<td width="77"><strong>13:45 – 14:15</strong></td>
<td colspan="2" width="211">The future of IT Security in Singapore</td>
<td width="87">Michelle Lee</td>
<td colspan="2" width="104">Singapore Infocomm Technology Security<br />
Authority</td>
</tr>
<tr>
<td width="77"><strong>14:15 – 14:45</strong></td>
<td colspan="2" width="211">Life After WPA</td>
<td width="87">Yap Chern Nam</td>
<td colspan="2" width="104">Institute of Electrical &amp; Electronics<br />
Engineers</td>
</tr>
<tr>
<td width="77"><strong>14:45 – 15:15</strong></td>
<td colspan="2" width="211">The Art &amp; Science of Hunting Down Wireless<br />
Hackers</td>
<td width="87">Julian Ho</td>
<td colspan="2" width="104">ThinkSECURE Pte Ltd</td>
</tr>
<tr>
<td width="77"><strong>15:15 – 15:45</strong></td>
<td colspan="2" width="211">Refreshments Break &amp; Project Showcase</td>
<td width="87">-</td>
<td colspan="2" width="104">-</td>
</tr>
<tr>
<td width="77"><strong>15:45 – 16:15</strong></td>
<td colspan="2" width="211">Hosted Security: complete protection with a peace of mind</td>
<td width="87">Leonard Sim</td>
<td colspan="2" width="104">Symantec<br />
Asia Pte Ltd</td>
</tr>
<tr>
<td width="77"><strong>16:15 – 16:45</strong></td>
<td colspan="2" width="211">Wireless LAN 802.11n Technology and Trends</td>
<td width="87">Wee Keng Tong</td>
<td colspan="2" width="104">Aruba<br />
Networks</td>
</tr>
<tr>
<td width="77"><strong>16:45 – 17:15</strong></td>
<td colspan="2" width="211">Measuring Security Risks with CVSS</td>
<td width="87">Eugene Teo</td>
<td colspan="2" width="104">Red Hat</td>
</tr>
<tr>
<td width="77"><strong>17:15 – 17:45</strong></td>
<td colspan="2" width="211">Biometrics: From Yesterday to Tomorrow</td>
<td width="87">Lim<br />
Eyung</td>
<td colspan="2" width="104">Biometrics Technical Committee of Singapore</td>
</tr>
<tr>
<td width="77"></td>
<td width="152"></td>
<td width="59"></td>
<td width="87"></td>
<td width="4"></td>
<td width="101"></td>
</tr>
</tbody>
</table>
<p><strong>Programme List: Web Challenge (Supported by HITB)</strong><br />
10:00am – 11:00am –  Briefing<br />
11:00am – 1:30pm –  Play Time<br />
1:30pm – 3:00pm –  Lunch &amp; Break<br />
3:00pm – 5:30pm –  Challenge Rounds<br />
5:30pm – 6:00pm –  Computation of Results<br />
6:00pm – 6:15pm –  Announcement of results &amp; Prize Presentation</p>
<p><strong>Web Challenge Details:</strong><br />
<strong> Date:</strong> March 05 2010<br />
<strong>Venue:</strong> Temasek Polytechnic Foyer area outside Auditorium<br />
<strong>Time:</strong> 10am – 6pm<br />
<strong>About</strong><br />
The Web Challenge will be organized by the Diploma in Cyber &amp; Digital Security and supported by<strong> Hack In The Box (HITB)</strong>. The Web Challenge aims to be a platform for all to showcase their web penetration testing skills against corporate emulated websites.<br />
<strong>Competition Structure </strong><br />
Each participant has a maximum of 20 minutes to complete 4 out of 10 challenges. Upon completion of each level, a separate scoring mechanism will assign the participants a score based on a time-mission scheme (i.e. the faster you complete the levels, the higher your score will be). The challenges will test the contestants on various web penetration techniques including XSS, SQL Injection, Remote File Inclusion, etc.<br />
<strong>Who can participate?</strong><br />
This competition will be open to the public.<br />
<strong>Prizes</strong><br />
1st – iPod Touch 8GB &amp; Free seat to HITBSecConf2010 – Malaysia (October 2010)<br />
2nd – iPod Shuffle 4GB &amp; Free seat to HITBSecConf2010 – Malaysia (October 2010)<br />
3rd – Free seat to HITBSecConf2010 – Malaysia (October 2010)</p>
</div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/benghacks.wordpress.com/137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/benghacks.wordpress.com/137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/benghacks.wordpress.com/137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/benghacks.wordpress.com/137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/benghacks.wordpress.com/137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/benghacks.wordpress.com/137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/benghacks.wordpress.com/137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/benghacks.wordpress.com/137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/benghacks.wordpress.com/137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/benghacks.wordpress.com/137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/benghacks.wordpress.com/137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/benghacks.wordpress.com/137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/benghacks.wordpress.com/137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/benghacks.wordpress.com/137/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=137&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://benghacks.wordpress.com/2010/02/23/all-bout-security-2010/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d17a3220f897e0066490a10b6aa6aae7?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">benghacks</media:title>
		</media:content>

		<media:content url="http://allboutsecurity.files.wordpress.com/2009/03/abs-logo.png?w=497" medium="image" />

		<media:content url="http://allboutsecurity.files.wordpress.com/2010/02/registerbuttonup.png?w=300&#038;h=150" medium="image">
			<media:title type="html">registerbuttonup</media:title>
		</media:content>
	</item>
		<item>
		<title>Major security hole exposed!</title>
		<link>http://benghacks.wordpress.com/2010/02/22/major-security-hole-exposed/</link>
		<comments>http://benghacks.wordpress.com/2010/02/22/major-security-hole-exposed/#comments</comments>
		<pubDate>Mon, 22 Feb 2010 02:55:11 +0000</pubDate>
		<dc:creator>benghacks</dc:creator>
				<category><![CDATA[HKEY_LOCAL_MACHINE]]></category>

		<guid isPermaLink="false">http://benghacks.wordpress.com/2010/02/22/major-security-hole-exposed/</guid>
		<description><![CDATA[www.sghackers.org down for weeks due to what I was told is hardware problem. But seems that the hardware problem is not the only problem cuz it exposed the site to a major security vulnerability! The MIME types dunno what corrupted or what, but it is failing to render x-http-php file headers so browser not only [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=136&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>www.sghackers.org down for weeks due to what I was told is hardware problem. But seems that the hardware problem is not the only problem cuz it exposed the site to a major security vulnerability!</p>
<p>The MIME types dunno what corrupted or what, but it is failing to render x-http-php file headers so browser not only dun understand the returned data, but server dun render the file content or recognise it.</p>
<p>So when server dun render a file especially scripted code, what happens? The server RETURNED THE ENTIRE FILE!</p>
<p>Ya, and since the site run WordPress, you hit wp-config.php and it return the whole file with DB username and password.</p>
<p>Super. Can access phpmyadmin WTF&#8230; and if UN/PW same, can also access email, cpanel login, ftp, etc etc.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/benghacks.wordpress.com/136/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/benghacks.wordpress.com/136/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/benghacks.wordpress.com/136/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/benghacks.wordpress.com/136/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/benghacks.wordpress.com/136/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/benghacks.wordpress.com/136/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/benghacks.wordpress.com/136/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/benghacks.wordpress.com/136/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/benghacks.wordpress.com/136/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/benghacks.wordpress.com/136/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/benghacks.wordpress.com/136/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/benghacks.wordpress.com/136/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/benghacks.wordpress.com/136/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/benghacks.wordpress.com/136/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=136&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://benghacks.wordpress.com/2010/02/22/major-security-hole-exposed/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d17a3220f897e0066490a10b6aa6aae7?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">benghacks</media:title>
		</media:content>
	</item>
		<item>
		<title>Packing Techniques</title>
		<link>http://benghacks.wordpress.com/2009/12/02/packing-techniques/</link>
		<comments>http://benghacks.wordpress.com/2009/12/02/packing-techniques/#comments</comments>
		<pubDate>Wed, 02 Dec 2009 02:53:24 +0000</pubDate>
		<dc:creator>benghacks</dc:creator>
				<category><![CDATA[HKEY_LOCAL_MACHINE]]></category>

		<guid isPermaLink="false">http://benghacks.wordpress.com/?p=134</guid>
		<description><![CDATA[My friend asked me how viruses can be spread from cracked game exes since he plays DOTA on a pirated Warcraft install on a private network. After I explained it to him, he ask me how come I never blogged about it, what a good question! So today I will blog about some basic methods [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=134&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>My friend asked me how viruses can be spread from cracked game exes since he plays DOTA on a pirated Warcraft install on a private network. After I explained it to him, he ask me how come I never blogged about it, what a good question! So today I will blog about some basic methods to packing. I will describe 4 different ways to pack files.</p>
<p>The first is packing using Resource Files, one of the easier ways to do so. In VC++ u can create/import resource files to your VC++ project. That is the easy part. The next part is slightly trickier, u need to extract the resource into a file on the system then somehow execute it. To do that you run the following calls:</p>
<p>hRes = FindResource(&#8230;);<br />
hResLoad = LoadResource(&#8230;, hRes);<br />
hFile = CreateFile(&#8230;);<br />
WriteFile (hFile, &#8230;);</p>
<p>With the file created you just do WinExec or something else =)</p>
<p>The 2nd method is similar, but not using Resource Files which can be easy to detect. It requires more work on your part. Basically you need a 2nd program to convert binary data into a string format which you can copy and paste into your VC++ code as a array or string variable. I don&#8217;t post code on this cuz there are many ways, eg read 1024 bytes, B64 it, print to output file, or convert to binary-coded string, then B64 it, etc. Bottom line is, convert the binary data to the string. Then your code just reverse it. One note, make sure to strip any trailing padding that some convertor code might add eg B64 likes to add &#8220;==&#8221; at the end of strings that are too short. Shell code makes use of this technique to hide assembly calls in code.</p>
<p>The 3rd and 4th way are just using existing tools. One way is to use InstallShield. Yes, InstallShield. It gives you a very nice GUI to add files, even to execute which file after unpacking. What you need tho is a original package that used InstallShield, then rebuild the package yourself, except you add in your own files. Simple right?</p>
<p>The 4th way is like the 3rd way, but you might not have InstallShield, cuz later version of VC++ dun have InstallShield free. But you have WinZip, 7-Zip, WinRAR rite? All of them have the ability to create self-extracting archives or SFX. What this SFX is is that it embed the unarchiver program to the SFX then treats the SFX exe as a archive file eg ZIP. A SFX exe you can still open using the archiver tool so it&#8217;s not ideal, eg if you created the SFX using WinZip you can open the SFX exe in WinZip and see the contents. Which is still not too bad if you had the original SFX and just re-SFXed it.</p>
<p>You can combine the 1st/2nd techniques with the 3rd/4th techniques, but you need to know how to use ResHacker or a similar tool. The neat thing about 3rd/4th techniques is that with social engineering it might work better since your victim might think since it came from InstallShield or WinZip it is safe =)</p>
<p>There are more advanced techniques eg unpack direct to memory, or using eggdrop instead of unpacking, but I won&#8217;t discuss them today =)</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/benghacks.wordpress.com/134/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/benghacks.wordpress.com/134/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/benghacks.wordpress.com/134/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/benghacks.wordpress.com/134/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/benghacks.wordpress.com/134/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/benghacks.wordpress.com/134/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/benghacks.wordpress.com/134/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/benghacks.wordpress.com/134/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/benghacks.wordpress.com/134/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/benghacks.wordpress.com/134/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/benghacks.wordpress.com/134/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/benghacks.wordpress.com/134/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/benghacks.wordpress.com/134/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/benghacks.wordpress.com/134/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=134&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://benghacks.wordpress.com/2009/12/02/packing-techniques/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d17a3220f897e0066490a10b6aa6aae7?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">benghacks</media:title>
		</media:content>
	</item>
		<item>
		<title>False Alarm</title>
		<link>http://benghacks.wordpress.com/2009/11/17/false-alarm/</link>
		<comments>http://benghacks.wordpress.com/2009/11/17/false-alarm/#comments</comments>
		<pubDate>Tue, 17 Nov 2009 04:00:03 +0000</pubDate>
		<dc:creator>benghacks</dc:creator>
				<category><![CDATA[HKEY_LOCAL_MACHINE]]></category>

		<guid isPermaLink="false">http://benghacks.wordpress.com/?p=131</guid>
		<description><![CDATA[So nothing happened lol&#8230; as of this post, the apec site is still up and running. I guess as they say in security&#8230; actually I dunno wat they say in security, but better safe then sorry! Would be curious to know if any attacks did happen, eg ddos, spam, spoof attacks, etc.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=131&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>So nothing happened lol&#8230; as of this post, the apec site is still up and running. I guess as they say in security&#8230; actually I dunno wat they say in security, but better safe then sorry! Would be curious to know if any attacks did happen, eg ddos, spam, spoof attacks, etc.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/benghacks.wordpress.com/131/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/benghacks.wordpress.com/131/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/benghacks.wordpress.com/131/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/benghacks.wordpress.com/131/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/benghacks.wordpress.com/131/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/benghacks.wordpress.com/131/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/benghacks.wordpress.com/131/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/benghacks.wordpress.com/131/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/benghacks.wordpress.com/131/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/benghacks.wordpress.com/131/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/benghacks.wordpress.com/131/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/benghacks.wordpress.com/131/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/benghacks.wordpress.com/131/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/benghacks.wordpress.com/131/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=131&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://benghacks.wordpress.com/2009/11/17/false-alarm/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d17a3220f897e0066490a10b6aa6aae7?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">benghacks</media:title>
		</media:content>
	</item>
		<item>
		<title>indonesiancoder.org</title>
		<link>http://benghacks.wordpress.com/2009/11/11/indonesiancoder-org/</link>
		<comments>http://benghacks.wordpress.com/2009/11/11/indonesiancoder-org/#comments</comments>
		<pubDate>Wed, 11 Nov 2009 03:44:00 +0000</pubDate>
		<dc:creator>benghacks</dc:creator>
				<category><![CDATA[HKEY_LOCAL_MACHINE]]></category>

		<guid isPermaLink="false">http://benghacks.wordpress.com/?p=129</guid>
		<description><![CDATA[While researching the cyberwar between Indonesian and Malaysian hackers I bookmarked an Indonesian hacker site for the group Killer-9. Since then I forgot all about it until today. In a short time of 2-3 weeks until 23rd Oct, they released SIX Joomla 0-day exploits! So I got curious, is the APEC site vulnerable? Naturally I [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=129&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>While researching the cyberwar between Indonesian and Malaysian hackers I bookmarked an Indonesian hacker site for the group Killer-9. Since then I forgot all about it until today. In a short time of 2-3 weeks until 23rd Oct, they released SIX Joomla 0-day exploits! So I got curious, is the APEC site vulnerable?</p>
<p>Naturally I tried out a POC code (<a href="http://www.governmentsecurity.org/forum/index.php?showtopic=30939" target="_blank">Joomla password reset exploit</a>), let&#8217;s call it pen-testing =) it didn&#8217;t work that means the site isn&#8217;t running Joomla 1.5.5 or older. The <a href="http://www.lifedork.net/joomscan-joomla-security-scanner.html" target="_blank">JoomScan</a> app also caught my attention, a Nessus type tool for Joomla and the skids out there. Like Nessus it scans for known exploits and warns u.</p>
<p>Of cuz for the 6 exploits posted, all of them are supposed to be 0-day. Are we worried yet? =)</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/benghacks.wordpress.com/129/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/benghacks.wordpress.com/129/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/benghacks.wordpress.com/129/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/benghacks.wordpress.com/129/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/benghacks.wordpress.com/129/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/benghacks.wordpress.com/129/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/benghacks.wordpress.com/129/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/benghacks.wordpress.com/129/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/benghacks.wordpress.com/129/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/benghacks.wordpress.com/129/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/benghacks.wordpress.com/129/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/benghacks.wordpress.com/129/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/benghacks.wordpress.com/129/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/benghacks.wordpress.com/129/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=129&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://benghacks.wordpress.com/2009/11/11/indonesiancoder-org/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d17a3220f897e0066490a10b6aa6aae7?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">benghacks</media:title>
		</media:content>
	</item>
		<item>
		<title>Windows 7 and &#8230;</title>
		<link>http://benghacks.wordpress.com/2009/11/06/windows-7-and/</link>
		<comments>http://benghacks.wordpress.com/2009/11/06/windows-7-and/#comments</comments>
		<pubDate>Fri, 06 Nov 2009 03:04:05 +0000</pubDate>
		<dc:creator>benghacks</dc:creator>
				<category><![CDATA[HKEY_LOCAL_MACHINE]]></category>

		<guid isPermaLink="false">http://benghacks.wordpress.com/?p=126</guid>
		<description><![CDATA[So&#8230; everyone crazy about Windows 7 now, even queue up at Challenger to buy. Of cuz la, cheaper price sure queue LOL! So what&#8217;s new about Windows 7? I finally tried it, and guess what, other than the nice GUI, NOTHING MUCH HAS CHANGED! I tried my self-written trojan on Windows 7, yep, it works. [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=126&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>So&#8230; everyone crazy about Windows 7 now, even queue up at Challenger to buy. Of cuz la, cheaper price sure queue LOL!</p>
<p>So what&#8217;s new about Windows 7? I finally tried it, and guess what, other than the nice GUI, NOTHING MUCH HAS CHANGED!</p>
<p>I tried my self-written trojan on Windows 7, yep, it works. This means the Win2K to XP to Vista to Windows 7 base API and DLL strucuture remains nearly the same if not identical.</p>
<p>Welcome to Windows 7! +)</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/benghacks.wordpress.com/126/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/benghacks.wordpress.com/126/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/benghacks.wordpress.com/126/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/benghacks.wordpress.com/126/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/benghacks.wordpress.com/126/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/benghacks.wordpress.com/126/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/benghacks.wordpress.com/126/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/benghacks.wordpress.com/126/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/benghacks.wordpress.com/126/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/benghacks.wordpress.com/126/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/benghacks.wordpress.com/126/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/benghacks.wordpress.com/126/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/benghacks.wordpress.com/126/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/benghacks.wordpress.com/126/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=benghacks.wordpress.com&amp;blog=5700222&amp;post=126&amp;subd=benghacks&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://benghacks.wordpress.com/2009/11/06/windows-7-and/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d17a3220f897e0066490a10b6aa6aae7?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">benghacks</media:title>
		</media:content>
	</item>
	</channel>
</rss>
